2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-23105MEDIUM6.5Jenkins Active Directory Plugin 2.25 and earlier does not encrypt the transmission of data between the Jenkins controlle...
CVE-2022-20621MEDIUM5.5Jenkins Metrics Plugin 4.0.2.8 and earlier stores an access key unencrypted in its global configuration file on the Jenk...
CVE-2022-20620MEDIUM4.3Missing permission checks in Jenkins SSH Agent Plugin 1.23 and earlier allows attackers with Overall/Read access to enum...
CVE-2022-20618MEDIUM4.3A missing permission check in Jenkins Bitbucket Branch Source Plugin 737.vdf9dc06105be and earlier allows attackers with...
CVE-2022-20616MEDIUM4.3Jenkins Credentials Binding Plugin 1.27 and earlier does not perform a permission check in a method implementing form va...
CVE-2022-20615MEDIUM5.4Jenkins Matrix Project Plugin 1.19 and earlier does not escape HTML metacharacters in node and label names, and label de...
CVE-2022-20614MEDIUM4.3A missing permission check in Jenkins Mailer Plugin 391.ve4a_38c1b_cf4b_ and earlier allows attackers with Overall/Read ...
CVE-2022-20613MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins Mailer Plugin 391.ve4a_38c1b_cf4b_ and earlier allows attac...
CVE-2022-20612MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins 2.329 and earlier, LTS 2.319.1 and earlier allows attackers...
CVE-2022-0013MEDIUM5.5A file information exposure vulnerability exists in the Palo Alto Networks Cortex XDR agent that enables a local attacke...
CVE-2022-0179MEDIUM5.4snipe-it is vulnerable to Missing Authorization
CVE-2022-0159MEDIUM5.4orchardcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-0087MEDIUM6.1keystone is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-21970MEDIUM6.1Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-21964MEDIUM5.5Remote Desktop Licensing Diagnoser Information Disclosure Vulnerability
CVE-2022-21963MEDIUM6.8Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVE-2022-21962MEDIUM6.8Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVE-2022-21961MEDIUM6.8Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVE-2022-21960MEDIUM6.8Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVE-2022-21959MEDIUM6.8Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVE-2022-21958MEDIUM6.8Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVE-2022-21954MEDIUM6.1Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-21932MEDIUM5.4Microsoft Dynamics 365 Customer Engagement Cross-Site Scripting Vulnerability
CVE-2022-21931MEDIUM4.2Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2022-21930MEDIUM4.2Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now